Adware

HotBar.Adware.BrowserHijacker.DDS removal guide

Malware Removal

The HotBar.Adware.BrowserHijacker.DDS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HotBar.Adware.BrowserHijacker.DDS virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine HotBar.Adware.BrowserHijacker.DDS?


File Info:

name: CBE00A47E0486819D594.mlw
path: /opt/CAPEv2/storage/binaries/c2942414b51732fce45582b1c1abfd8941c998e9494c0300023e011e0a6e1d73
crc32: 2D9C9D27
md5: cbe00a47e0486819d59461fad9e2c86f
sha1: 0fc32d280bbd03d2f2634d5cf1173b2818ef051d
sha256: c2942414b51732fce45582b1c1abfd8941c998e9494c0300023e011e0a6e1d73
sha512: 149e33dc1295852285988fcb217a51c6e273df585d228c13cfc2d45d626cd00f219dfb39b35f2232799cdf38a713c6a406416416b529d3fb21d3797348e88ca2
ssdeep: 3072:+U4OWT4t809IpN7GXCdOjQE/DX21EJh3IPHag7iV5gkCyQw:+ASU9yNanlr2gIfih3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T153347C26BFB1C0BAD61696354C91CB8911E2FCB19EB603C776D8136F6EE11E21F341A4
sha3_384: dfc51cedc2068290aff662ff1204dccddcf0c3a5e3616b6e8e460ca874d68fcd5f3a4a41b7cf6f8f9b4768b770c3f965
ep_bytes: 60be00e044008dbe0030fbff57eb0b90
timestamp: 2012-03-08 16:05:53

Version Info:

FileDescription: Installer
FileVersion: 2.0.655.0
ProductVersion: 2.0.655.0
Translation: 0x0409 0x30ed

HotBar.Adware.BrowserHijacker.DDS also known as:

BkavW32.AIDetectMalware
LionicRiskware.Win32.Convagent.1!c
AVGWin32:Evo-gen [Trj]
Elasticmalicious (moderate confidence)
MicroWorld-eScanGen:Variant.Zusy.427394
FireEyeGeneric.mg.cbe00a47e0486819
ALYacGen:Variant.Zusy.427394
MalwarebytesHotBar.Adware.BrowserHijacker.DDS
VIPREGen:Variant.Zusy.427394
SangforTrojan.Win32.Save.a
CrowdStrikewin/grayware_confidence_100% (W)
AlibabaTrojan:Win32/HotBar.a37e11e7
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderThetaGen:NN.ZexaE.36348.om0@aGp1Z2hi
CyrenW32/HotBar.S.gen!Eldorado
SymantecML.Attribute.HighConfidence
CynetMalicious (score: 100)
APEXMalicious
BitDefenderGen:Variant.Zusy.427394
SUPERAntiSpywarePUP.Hotbar/Variant
AvastWin32:Evo-gen [Trj]
EmsisoftGen:Variant.Zusy.427394 (B)
F-SecureHeuristic.HEUR/AGEN.1321555
BaiduWin32.Adware.Hotbar.a
ZillyaAdware.Convagent.Win32.2901
TrendMicroTROJ_GEN.R002C0WGS23
McAfee-GW-EditionBehavesLike.Win32.RealProtect.dh
Trapminesuspicious.low.ml.score
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.427394
AviraHEUR/AGEN.1321555
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.TSGeneric
ArcabitTrojan.Zusy.D68582
MicrosoftTrojan:Win32/Sabsik.RD.A!ml
GoogleDetected
AhnLab-V3Adware/Win32.Hotbar.R14391
McAfeeArtemis!CBE00A47E048
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0WGS23
RisingAdware.Hotbar!1.6AAD (CLASSIC)
IkarusTrojan.SuspectCRC
FortinetW32/ULPM.16C0!tr
Cybereasonmalicious.80bbd0
DeepInstinctMALICIOUS

How to remove HotBar.Adware.BrowserHijacker.DDS?

HotBar.Adware.BrowserHijacker.DDS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment